You currently have javascript disabled. Several functions may not work. Please re-enable javascript to access full functionality.

Register a free account to unlock additional features at BleepingComputer.com

Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Tried Ad-aware and spybot....but these windows keep coming back as soon as i connect to the internet(I have a DSL connection). Can anyone help?

I have scanned my machine with Spybot & Ad-aware(6 times), but no luck. Every time i scan with Ad-aware, it keeps showing 2-3 critical files which need to be removed. These names of these files are similar to
'k4lq0e35eh.dll', 'guard.tmp'

Ad-aware does not remove them directly, but says it will remove these files, only when i reboot. On rebooting, the above files are removed from winnt\system32, but another set of dll file(s) with similar names are created.

Try performing these online Virus scans:[Watch the Address bar in IE. You may receive alerts that "This site might require the following ActiveX control...Click here to install...". Click on that alert and then Click Install ActiveX component]

Tried Ad-aware and spybot....but these windows keep coming back as soon as i connect to the internet(I have a DSL connection). Can anyone help?

I have scanned my machine with Spybot & Ad-aware(6 times), but no luck. Every time i scan with Ad-aware, it keeps showing 2-3 critical files which need to be removed. These names of these files are similar to 'k4lq0e35eh.dll', 'guard.tmp'

Ad-aware does not remove them directly, but says it will remove these files, only when i reboot. On rebooting, the above files are removed from winnt\system32, but another set of dll file(s) with similar names are created.

PLEASE HELP

Tushar

//Mod edit: To modify Hot Links above to protect.

You need to be running Adaware and Spybot from safe mode so the miscreant processes aren't running and can therefiore be removed.

If you are not having further problems and don't need to post a HJT log, then you should SET A NEW RESTORE POINTto prevent reinfection from an old restore point. Any malware you picked up could have been saved in System Restore and can reinfect your system. Setting a new restore point AFTER cleaning your system will help prevent this and enable your computer to "roll-back" to a clean working state.

The easiest and safest way to set a new RESTORE POINT:1. Go to Start > Programs > Accessories > System Tools and click "System Restore".2. Choose the radio button marked "Create a Restore Point" on the first screen then click "Next". Give the R.P. a name then click "Create". The new point will be stamped with the current date and time. Keep a log of this so you can find it easily should you need to use System Restore.3. Then go to Start > Run and type: Cleanmgr4. Click "OK".5. Click the "More Options" Tab.6. Click "Clean Up" in the System Restore section to remove all previous restore points except the newly created one.